DHCP reservation & DNS for content filtering

Hi All,
I am working around with server 2008 for quite a while and facing a problem as below,
1.DHCP reservation error
Server Ip:192.168.0.254 (configured as DNS server for local use only with AD & DHCP)
DHCP scope: 192.168.0.100 to 192.168.0.200 excluded 192.168.0.100 to 192.168.0.110
earlier the same scope was 192.168.0.10 to 192.168.0.100. I was facing a error when I make a IP reservation against a MAC number error was " The unique identifier may not be correct do you want to use the identifier anyway" when I click yes "DHCP
server received a message from a client that is not valid" and by this error I am not able to make any reservations now against MAC numbers.
The same error was also on the earlier scope and that's why changed to a new scope but did not work. Any solutions will me much appreciated
2.DNS fine tuning. 
I have an open DNS account on which my WAN IP number is configured to do a content filtering. I have two LAN ports with the below IP number
Local : 192.168.0.254 ( configured with no gateway and DNS as loopback (127.0.0.1)
ISP: 192.168.0.253 (with ISP gateway and DNS as loop back adapter & open DNS)
I have did a content filtering and things are working fine. But I got to open up some machines out of this content filtering and when I try to give the IP number in this below fashion.
192.168.0.115
255.255.255.0
192.168.0.1
DNS
192.168.0.254
ISP DNS to avoid filtering
I find that 192.168.0.254 does the resolving and things are still filtered as per the schedule. Is there a way where we can configure 192.168.0.254 (Local DNS server) to stop resolving web requests and only cater to resolving local names for connectivity.
I do know its too long but solutions for the same will be help me out to solve it. Thanks in advance.
Regards,
Vaschell

Hello,
I have found something strange on the DHCP reservation. When I try to add a MAC number out of the network its able to make out a reservation.
Is there any way to clear the MAC number cache or something else which I can try.
A copy of the ipconfig /all for the server is below,
C:\Users\Administrator>ipconfig /all
Windows IP Configuration
   Host Name . . . . . . . . . . . . : server
   Primary Dns Suffix  . . . . . . . : xyzabc.com
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : Yes
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : xyzabc.com
Ethernet adapter LOCAL:
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Intel(R) I210 Gigabit Network Connectio
#2
   Physical Address. . . . . . . . . : 00-1E-67-A4-F4-DC
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.0.254(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . :
   DNS Servers . . . . . . . . . . . : 127.0.0.1
   NetBIOS over Tcpip. . . . . . . . : Enabled
Ethernet adapter ISP:
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Intel(R) I210 Gigabit Network Connectio
   Physical Address. . . . . . . . . : 00-1E-67-A4-F4-DB
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.0.253(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.0.1
   DNS Servers . . . . . . . . . . . : 127.0.0.1
                                       208.67.222.222
                                       208.67.220.220
   NetBIOS over Tcpip. . . . . . . . : Enabled
PPP adapter RAS (Dial In) Interface:
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : RAS (Dial In) Interface
   Physical Address. . . . . . . . . :
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.0.205(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.255
   Default Gateway . . . . . . . . . :
   NetBIOS over Tcpip. . . . . . . . : Disabled
Tunnel adapter Local Area Connection* 8:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : isatap.{0602F6CF-4B32-491F-994A-3C0952D
B54}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 9:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : isatap.{6A14710B-A078-4AF9-BD7A-989767F
377}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 11:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 02-00-54-55-4E-01
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 12:
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
C:\Users\Administrator>
Thanks,
Vaschell

Similar Messages

  • Cisco Content Engine for Content Filtering

    Hi All,
    I am looking for a low end solution for Content Filtering and would like to use Cisco Content Engine.
    1. The documentation said that Websense, Secure Computing SmartFilter (does not require separate SmartFilter) & N2H2 support is there on the CE. I used configurator on CE 510, but it did not give me option for any of those. I would appreciate any input in this regard.
    2. Also, I assume that once I get a Content Engine, I don't need to use Microsoft Proxy any more, please confirm.
    regards,
    Ahmer Ghazi

    You would have to Install the Smartfilter software on the Content engine that would work with the ACNS software running on the CE. SmartFilter software operates inside your network to control user access to external Internet resources and allows you to restrict access to World Wide Web pages, newsgroups, and FTP sites.
    For more details refer:
    http://www.cisco.com/univercd/cc/td/doc/product/webscale/uce/acns41/smrtfltr/sf_chap1.htm
    The Content Engine does the job of storing content locally and serving it to the users, so you would not need to use the Microsoft Proxy.

  • Content filters based on Group Best Practice

    What is best practice for Content filters based on Group.
    What we wanna accomplish.
    We have few groups but i'll make an example on two.
    We have one group that have allowed "Media" and another group that have allowed "Exe".
    What is best practice if one user is in both group.
    How would you do Content filtering?
    I dont see in Content filtering condition
    if (Envelope Recipient does not mach group) then Block.
    Is the best way to create first?
    If (attachment.type="Media") then (insert header="sometext);
    and after in Content filter below
    if (Envelope Recipient) and (Header does not contain "sometext") then Block.

    Hi,
    I understand that I will have to use BPM. What is the best way?

  • How can I set my content filtering to allow me to access all my email and applications

    I got an email and tried to view the information on the link but could not due to content filtering

    Hi ms.B,
    What are you using for content filtering?

  • Does the ASA5525-K9 support Content filtering?

    Hi,
    I know the 5510 & 5520s support the CSC-SSM module for Content Filtering (Anti-Phishing, Anti Spam, URL filtering,
    Anti-Spyware & Antivirus), but what about content filtering for the ASA5525-K9.
    The problem that I have is that I need a firewall that supports up to 1 Gbps Maximum Firewall Throughput and to support 250 users with Content Filtering described above.
    I'm using the following doc for sizing and came across the ASA5525-K9 for 1 Gbps, but not sure about the Content filtering:
    http://www.cisco.com/en/US/partner/products/ps6120/prod_models_comparison.html#~tab-b
    Thanks,
    CR

    No, the new X series ASA does not support Content Filtering CSC module.
    Here is what is supported on the new ASA5525-X for your reference:
    http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/data_sheet_c78-701808.html

  • DHCP Reservation Sync and DNS Host record sync etc shown in IPAM GUI

    Hello all,
    I am aware of the scripts in the TechNet script center to sync DHCP leases etc to IPAM, however my question is about something else -
    If you highlight an IP address (IP address inventory->select an IP), You can see fields that say: "DHCP reservation sync", "DNS PTR record sync" and "DNS host record sync" as below:
    I was curious as to what these are for. Is there some built-in sync functionality for these that I perhaps have not enabled? (Don't see such options any where..)
    thanks,
    -Ravi

    Hi  Ravi ,
    The three columns tell us the information of the synchronization between IPAM server and DNS server (or DHCP server) .
    Here is the detailed guide for using IPAM :
    Using the IPAM Client Console :
    https://technet.microsoft.com/en-us/library/jj878351.aspx#inventory
    IPAM can sync DNS and DHCP records .
    The IPAM database is separate from DHCP and DNS servers on our network ,and full synchronization of hosts and IP addresses between IPAM and managed DNS or DHCP servers does not occur automatically
    unless we have configured automated tasks to perform this synchronization .
    For detailed information ,see
    DNS and DHCP record synchronization chapter in the following link :
    Multi-server Management :
    https://technet.microsoft.com/en-us/library/jj878329.aspx
    Best Regards,
    Leo
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • How to get Airport Extreme to Provide DNS for Static DHCP

    I set up some static DHCP entries on my Airport Extreme 802.11n.  How do I make it provide DNS resolution for these devices?
    For example, I defined a device which I named "tvpc".  With my old router, once I added a static DHCP reservation and provided it with a name, I could "ping tvpc" from any device on my network, and my old router would provide the DNS resolution, because it provided DNS service for all DHCP entries.
    I suspect that the answer is, "Apple routers don't do this."  If that is the case, how do other people get name resolution for the non-Apple devices you set up with static DHCP?  Do you use /etc/hosts files? 

    I set up some static DHCP entries on my Airport Extreme 802.11n.  How do I make it provide DNS resolution for these devices?
    "Apple routers don't do this."
    how do other people get name resolution for the non-Apple devices you set up with static DHCP?
    They don't.
    Suggest that you use another router with the capabilities that you need.

  • EA6200 DNS / DHCP reservation

    Hello.  I recently replaced my old router with a Linksys EA6200, and I'm having a bit of trouble getting local DNS working correctly.
    On my network I like to set up DHCP reservations to make it easier to find certain machines.  For example, let's say I have a DHCP reservation for 192.168.1.101 for a machine called "bob".  DHCP seems to assign the proper IP to the machine, so that part seems to be working fine.  But the DNS server in the router does not resolve "bob".  This has worked fine on every other router I've owned.  Any ideas what I'm missing?
    Solved!
    Go to Solution.

    Ok, I think I've figured out what was going on, but I'll leave this here in case someone else has the same issue. It seems that my clients were still on the dhcp lease from my old router, so they had not registered. Forcing them to renew their dhcp lease seems to correct the issue.

  • Download of Firefox for Mobile is inhibited because "Your content filtering level doesn't allow you to download this item." How do I correct my content filtering level?

    I have a Samsung Galaxy SII with T-Mobile. The model #is SGH-T989, Android version 2.3.6

    "Content filter" is the Android Market's method for restricting certain applications that may provide access to "mature" content. You can disable content filtering in the settings of the Market app on your phone.
    -Michelle

  • Using eDir as backend store for DHCP and DNS

    With SLES9 you can use LDAP as the backend for DHCP and DNS? Can you do
    this against eDIR? How? Do you manage it within iManager or still using
    the YAST2 tools?

    On Mon, 25 Apr 2005 14:29:30 +0000, edbmdave wrote:
    > With SLES9 you can use LDAP as the backend for DHCP and DNS? Can you do
    > this against eDIR? How? Do you manage it within iManager or still using
    > the YAST2 tools?
    Hmm, haven't tried that. I guess that it would be quite tricky. Even if
    you did manage to do it I don't think iManager would be able to see the
    config.
    Mark
    Mark Robinson
    Novell Volunteer SysOp
    One by one the penguins steal my sanity...

  • Windows 2008 DNS & DHCP configuration steps for 11gR2 GI install with GNS

    Hi,
    I have windows 2008 R2 server with DNS & DHCP services installed. I am planning to install 2 node RAC with GNS option.
    The problem is i could not find any document to setup the windows 2008 DNS server for the below steps.
    a. Configure GNS VIP : add a name resolution entry in a DNS for the GNS virtual IP address in the forward Lookup file.
    gns-server IN A <virtual_IP>
    where gns-server is the GNS virtual IP address given during grid installation.
    b. Configure the GNS sub-domain delegation: add an entry in the DNS to establish DNS Lookup that directs the DNS resolution of a GNS subdomain to the cluster.
    clusterdomain.example.com. NS gns-server.example.com.
    where clusterdomain.example.com is the GNS subdomain (provided during grid installation) that you
    delegate and gns-server.clustername.com resolves to GNS virtual IP address.
    I am aware that this configuration steps has to be taken care by the System administrator. Here is what he tried and the results.
    My SA was able to Configure GNS VIP in the DNS and the Nslookup works fine for this.
    When he Configures the GNS sub-domain delegation the nslookup fails when trying to resolve the SCAN name.
    Any step by step tutorial for this windows 2008 DNS & DHCP configuration for Oracle GNS setup would be highly appreciated.
    Thanks,
    Ashok Kumar.G

    Hi Guys,
    Any help on this request will be very helpful.
    Thanks,
    Ashok Kumar.G

  • WRT160N mac address to use for dhcp reservation

    I have to reserve this one router's MAC address in the main router for the building. Both routers in question are WRT160Ns. The router I have to reserve's MAC address ends in 5A (on the bottom of the router, and in the ARP table when connected via wifi), but it's 5B that is listed in the DHCP resrvation table for the main router. Why is this? What should I do? I am trying to reserve it in order to keep the nettalk voIP adaptor connected to the network.

    How about if you access the setup page of the 2nd router then go to the status and check the local mac address under the local network subtab. From there you will be able to compare if you have the right mac address.

  • Are Content Filters available from Verizon for Apple iPhone 5c?

    I noticed that Verizon offers Content Filters for my kids' Apple iPhone 4, but one is not offered for the 5c.  Is that correct?
    If so, what are some good alternatives for a dad concerned about his son's access to the garbage on the interweb?

        CluelessDad We understand the importance of content filtering for your devices. The 4g apple devices do not support our content filtering options. You can try going into the settings for the brwoser on the device settings, general,restrictions and restrcition options.
    Sheritah_vzw
    Follow us on Twitter
    @VZWSupport

  • Content filters for teens

    How do I set content filters for teenagers on iPhone 6?

        DBruce
    I definitely want to make sure you have all the answers you need to set up your teenager's device the way you want! There are built in Parental Controls in the iPhone 6. Check out all the details right here: http://bit.ly/1zZc3Pk
    RuthW_VZW
    Follow us on twitter @VZWSupport

  • Content filtering solutions for BorderManager

    We're considering implementing a content filtering solution with our
    BorderManager proxy server. What products are available for
    BorderManager 3.9, and what do you recommend we use?

    First thought on the Marshal8e6 appliance.
    So far, I like this solution. We run it in invisible mode and it sends blocks based on profiles we can create. I have not setup the LDAP integration yet so I can not say more about how that is going to work but so far so good.
    I am having an issue where I can not get updates to run to the box currently. I have a filter exception that is setup as follows:
    Source Int: Any
    Dest Int: Public
    Packet type : any IP stateful
    Source host: 8e6 appliance
    Dest Network: range of update addresses (secureupdate.8e6.com)
    and it will not update.
    This is the error when SSH tries to run from the appliance:
    HTTP/1.0 302 Moved Temporarily
    Content-Length: 217
    Connection: Close
    Content-type: text/html
    Location:
    https://192.168.102.253:444/BM-Login...253:1959/data/
    bmaok.htm%22
    <HTML><HEAD><TITLE>Novell BorderManager</TITLE><BODY><b>The document has
    moved <A
    HREF="https://192.168.102.253:444/BM-Login/?%22http://192.168.102.253:1959
    /data/bmaok.htm%22">here</A></b></HEAD><BODY></BODY></HTML>
    read:errno=0
    The 192.168.102 address is from one of our DMZs, so it is strange that this is where BM is trying to authenticate... but why??
    Any ideas greatly appreciated.
    Steve D.

Maybe you are looking for